Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-2629 (LifeType, pblog)

BugsAlert Home > CVE-2008-2629 (LifeType, pblog)
 
 

SQL injection vulnerability in the LifeType (formerly pLog) module for Drupal allows remote attackers to execute arbitrary SQL commands via the albumId parameter in a ViewAlbum action to index.php.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-2629

Learn more about CVE-2008-2629 (LifeType, pblog)
 
Tags: cve-2008-2629 lifetype pblog

Related Items

      CVE-2007-6448 (Wireshark)

      VU#563673:Cisco Adaptive Security Appliance insecurely logs passwords

      Sweep Speex Header Processing Vulnerability

      CVE-2008-3792 (Kernel)

      Fedora Security Update Fixes Squid Cache Update Reply DoS Issue

      GE Fanuc Proficy Information Portal 2.6 Authentication Vulnerability

      Ubuntu: Qt vulnerability

 

Pixel